CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11007  CVE-2004-2581  Candidate  Novell iChain 2.3 allows attackers to cause a denial of service via a URL with a "specific string."  Assigned (20051128)  None (candidate not yet proposed)    View
76543  CVE-2014-9242  Candidate  SQL injection vulnerability in admin/pages/modify.php in WebsiteBaker 2.8.3 allows remote attackers to execute arbitrary SQL commands via the page_id parameter.  Assigned (20141203)  None (candidate not yet proposed)    View
11263  CVE-2005-0057  Candidate  The Hyperlink Object Library for Windows 98, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a crafted link that triggers an "unchecked buffer" in the library, possibly due to a buffer overflow.  Assigned (20050111)  None (candidate not yet proposed)    View
76799  CVE-2014-9498  Candidate  Cross-site scripting (XSS) vulnerability in the Webform Invitation module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.4 for Drupal allows remote authenticated users with the Webform: Create new content, Webform: Edit own content, or Webform: Edit any content permission to inject arbitrary web script or HTML via a node title.  Assigned (20150103)  None (candidate not yet proposed)    View
11519  CVE-2005-0313  Candidate  Multiple directory traversal vulnerabilities in Magic Winmail Server 4.0 Build 1112 allow remote attackers to (1) upload arbitrary files via certain parameters to upload.php or (2) read arbitrary files via certain parameters to download.php, and remote authenticated users to read, create, or delete arbitrary directories and files via the IMAP commands (3) CREATE, (4) EXAMINE, (5) SELECT, or (6) DELETE.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 20879 of 20943, showing 5 records out of 104715 total, starting on record 104391, ending on 104395

Actions